giminee-loggo[.]godaddysites[.]com
“Gemini | Login”
giminee-loggo.godaddysites.com — Неперевірений. Уособлення бренду: Gemini; Тип шахрайства: Credential Phishing. Зведення доказів: VirusTotal 16/91 (ADMINUSLabs, alphaMountain.ai, BitDefender, ESET, Emsisoft); CF Radar malicious; PhishDestroy score 95/100. Реєстратор: GoDaddy.
Докладний аналіз PhishDestroy AI нижче залишено англійською, щоб зберегти оригінальний криміналістичний запис.
This domain, giminee-loggo.godaddysites.com, is confirmed as a brand impersonation threat targeting Gemini, a cryptocurrency exchange platform. The site mimics the official Gemini login portal, presenting a near-identical interface under the page title 'Gemini | Login.' The objective is to deceive users into entering their account credentials, which are then harvested for unauthorized access to crypto wallets or financial accounts. Given the high-value target, this threat poses significant risk to individuals and organizations dealing with digital assets, potentially leading to financial loss or identity compromise. Analysis indicates the domain was registered on November 18, 2013, through GoDaddy.com, LLC, though the malicious activity likely commenced much later. The domain is hosted on an IP address 13.248.243.5 and uses a GoDaddy-issued SSL certificate, which may lend a false sense of legitimacy. Security vendors have flagged this domain on VirusTotal, with 15 out of 95 engines detecting it as malicious. Additionally, it appears on one security blocklist and has been assigned a trust score of 0/100 by Gridinsoft, further corroborating its malicious nature. The domain is currently offline, but its infrastructure remains a concern for potential reactivation. If you visited giminee-loggo.godaddysites.com or entered any credentials on the site, immediate action is required. First, revoke access to any active sessions on the legitimate Gemini platform and change your account password. Enable multi-factor authentication (MFA) if not already active. Monitor your Gemini account and linked financial accounts for unauthorized transactions or suspicious activity. If you entered sensitive information beyond credentials, such as recovery phrases or personal identification details, consider reporting the incident to Gemini’s security team and relevant financial authorities. Additionally, scan your device for malware to ensure no secondary infections were introduced.
Розвіддані з мережевої безпеки
Процес реагування на загрози Pipeline
Статус у публічних блоклистах
Збережений знімок
Аналітика доменів
Технічні деталіDNS, SAN-адреси SSL, мітки часу
ICANN OVERSIGHT
Registration: godaddysites.com
Акредитація та контекст RAA
Акредитація та контекст RAA
Registrar accreditation and DNS abuse obligations
For the registrable domain godaddysites.com behind this subdomain, the registrar above operates under an ICANN accreditation agreement. The links below provide the official fee schedule and current DNS abuse compliance guidance.
Accreditation is a contract, not a safety certification.
RAA §3.18 establishes abuse-contact and handling requirements. This report can document stored outbound notices and later technical observations; it does not by itself establish receipt, investigation, remediation, or contractual non-compliance.
Технології · 4 identified
RequireJS is a JavaScript library and file loader which manages the dependencies between JavaScript files and in modular programming.
requirejs.org 100% впевненостіRe:amaze is a multi-brand customer service, live chat, and help desk solution.
www.reamaze.com 100% впевненостіHTTP Strict Transport Security (HSTS) informs browsers that the site should only be accessed using HTTPS.
www.rfc-editor.org 100% впевненостіАналіз VirusTotal
Аналіз конфігурації сайту
Докази та зовнішні звіти
Чи вплинув на вас цей сайт?
Якщо ви ввели облікові дані облікового запису, особисту чи платіжну інформацію або завантажили файл із цього домену, негайно вживіть заходів. Нижче наведено ресурси, які допоможуть вам повідомити про інцидент і захистити себе.
Зверніться до місцевих органів влади
Виберіть свою країну, щоб отримати офіційні контакти кіберзлочинців або створити проект скарги →.
Перевірити будь-який домен
Аналіз загроз за допомогою збереженого списку блокувань, WHOIS, DNS і загальнодоступних доказів сканування
Сканувати заразПовідомити про фішинг
Додавайте підозрілі домени до нашої бази даних загроз — захищайте спільноту
ПовідомитиПотокова стрічка про загрози
Останні звіти про фішинг і помічені зміни доступності
ВідстежуватиБудьте в курсі подій, дбайте про свою безпеку
Слідкуйте за актуальними загрозами або оскаржте цей запис, якщо вважаєте, що це помилкова тривога